Vulnerabilities > Spiffyplugins > WP Flow Plus

DATE CVE VULNERABILITY TITLE RISK
2024-06-04 CVE-2024-35651 Cross-site Scripting vulnerability in Spiffyplugins WP Flow Plus
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plugins WP Flow Plus allows Stored XSS.This issue affects WP Flow Plus: from n/a through 5.2.2.
network
low complexity
spiffyplugins CWE-79
5.4